reVocab ("we", "us", "the app") is a Flutter-based vocabulary learning app that helps you build flashcards from real-world photographs, text, and images. Czech is currently the first supported language, with more planned. This policy explains what data we collect, why, how it's processed, and what rights you have over it. It applies to the reVocab mobile app and this page.
1. Who we are
reVocab is operated as an independent app. If you have a question about this policy or your data, contact us at support@revocab.app.
2. What data we collect
| Category | Examples | Why |
|---|---|---|
| Account data | Email address, display name, a unique account ID (via Google Sign-In or Email/Password) | To create and secure your account, and sync your data across devices |
| Learning profile | Native language, learning language, learning goal | To personalize translations, examples, and generated content |
| Your vocabulary content | Cards, decks, folders, and study/review history (spaced-repetition progress) | This is the core content of the app — your personal study library |
| Photos you scan | Images of vocabulary sheets, signs, menus, objects, or text you choose to photograph or upload | Processed to extract and translate vocabulary, identify objects, or generate example content. Photos are sent to our AI providers (see Section 3) for processing and are not stored in our own database or file storage. |
| Subscription status | Whether you're on Free, Trial, or Premium, and expiration date | To unlock the features your plan includes. Payment itself (card numbers, billing details) is handled entirely by Google Play Billing / Apple's App Store — we never see or store your payment details. |
| Usage & diagnostic data | Daily feature-usage counters, app version, crash reports, general usage analytics | To enforce fair-usage limits, and to find and fix bugs |
3. Who we share data with
We use a small number of trusted service providers to run reVocab. We don't sell your data, and we don't share it for advertising purposes.
- Google Firebase (Authentication, Firestore database, Cloud Functions, Analytics, Crashlytics, App Check) — our core infrastructure, hosted by Google.
- Google Gemini API and OpenAI API — when you scan a photo, type a word to look up, or generate a story, the relevant text/image is sent to one of these AI providers to produce the translation, explanation, or generated content. We route each request to whichever provider is available at that moment; both are bound by their own data-use terms for API traffic.
- RevenueCat — manages subscription state across app stores.
- Google Play Billing / Apple App Store — processes payments directly; we never receive your card details.
4. Camera & storage permissions
reVocab requests camera access so you can photograph vocabulary sheets, signs, or objects for the AI Scanner feature, and storage/photo library access so you can pick an existing image instead of taking a new one. Both permissions are only used when you actively choose to scan or attach an image — the app does not access your camera or photos in the background.
5. How long we keep your data
We keep your account and content for as long as your account is active. If you delete your account (Settings → Delete Account, in the app), we permanently delete your profile, your saved cards and decks, and your study history from our systems. Some records (e.g. subscription/payment history) may be retained by Google Play or Apple independently of us, per their own retention rules, since they — not reVocab — process your payment.
6. Your rights
Depending on where you live (including if you're in the EU/EEA, where GDPR applies), you may have the right to:
- Access the personal data we hold about you.
- Delete your account and associated data — available directly in the app under Settings → Delete Account, at any time, with no need to contact us.
- Correct inaccurate data (most profile fields are editable directly in Settings).
- Object to or restrict certain processing, or withdraw consent where processing is based on consent.
To exercise a right not covered by an in-app control (for example, requesting a copy of your data), email support@revocab.app. We'll respond within a reasonable time and, in any case, within the timeframe required by applicable law.
7. Security
Your data is stored using Firebase's infrastructure with access controls restricting it to your own account. AI-calling features require your account to be signed in and verified as a genuine app install (App Check) before any request is processed.
8. Children's privacy
reVocab is not directed at children under 13 (or the minimum age required by your local law) and we do not knowingly collect data from children below that age. If you believe a child has provided us with personal data, contact us and we will delete it.
9. Changes to this policy
If we make a material change to this policy, we'll update the "Last updated" date above and, where appropriate, notify you in-app.